Improper Input Validation in CAI Content Credentials by Adobe
CVE-2026-75638

6.5MEDIUM

What is CVE-2026-75638?

CAI Content Credentials by Adobe is susceptible to an Improper Input Validation vulnerability that allows an attacker to bypass security features. This security flaw enables unauthorized write access, potentially compromising the integrity of user data. Exploitation requires user interaction; victims must navigate to a specially crafted URL or engage with a compromised webpage, making it crucial for users to remain vigilant against phishing attempts and malicious links.

Affected Version(s)

Content Credentials Command-Line Tool 0

Content Credentials Rust SDK 0

Content Credentials Command-Line Tool c2patool-v0.27.17

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.